Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Vulnerability Disclosure

20 articles

Cyberscoop Vulnerability Disclosure Palo Alto Networks Jun 1

Attackers are exploiting Palo Alto Networks defect that initially flew under the radar

The escalated threat posed by the defect showcases how quickly a seemingly mild vulnerability can turn into an urgent warning. The post Attackers are exploit...

Cyberscoop →

The Record Vulnerability Disclosure Jun 1

Inspector general finds NIST mistakes have made vulnerability database ineffective

NIST’s National Vulnerability Database (NVD) backlog mushroomed from 13,000 unprocessed security vulnerabilities in February 2024 to more than 27,000 by the ...

The Record →

SC Media Vulnerability Disclosure Palo Alto Networks Jun 1

PAN-OS authentication bypass bug added to list of exploited vulnerabilities

While NIST upgraded the bug to 9.1, experts say teams must focus more on how attackers can exploit this flaw to gain VPN access.

T1556

SC Media →

CSO Online Vulnerability Disclosure Amazon Oracle Jun 1

Oracle’s first monthly patch release fixes 35 flaws, including 11 rated ‘critical’

Oracle has released the first security fixes in its new monthly Critical Security Patch Update (CSPU) cycle, designed to address urgent vulnerabilities that ...

CSO Online →

Schneier on Security Vulnerability Disclosure Intel Jun 1

Vulnerability Disclosure in the Age of AI

New article: “Responsible Disclosure in the Age of AI: A Call for Urgent Action,” by Melissa Hathaway. Abstract: Artificial intelligence is fundamentally res...

Schneier on Security →

Wordfence Blog Vulnerability Disclosure WordPress Jun 1

Unauthenticated Privilege Escalation Vulnerability Patched in Kirki WordPress Plugin

On May 4th, 2026, we received a submission for an Unauthenticated Privilege Escalation vulnerability in the Kirki WordPress plugin. Although the plugin has m...

T1548

Wordfence Blog →

BleepingComputer Vulnerability Disclosure Jun 1

Race Against Time: Why Faster Vulnerability Alerts Matter

Attackers are exploiting vulnerabilities faster than many organizations can identify and patch them. SecAlerts explains why faster vulnerability alerts can h...

BleepingComputer →

Infosecurity Magazine Vulnerability Disclosure Jun 1

Critical Flowise Flaw Gives Attackers Full Server Control

Obsidian publishes PoC for a 1-click Flowise RCE that can fully compromise self-hosted servers

Infosecurity Magazine →

The Hacker News Vulnerability Disclosure Palo Alto Networks Linux Jun 1

⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AI-Powered Attacks, OAuth Phishing and More

Monday hit like a cron job with anger issues. A busted auth path here, a repo-side faceplant there, some "patched-ish" thing already getting chewed on in the...

T1566

The Hacker News →

Help Net Security Vulnerability Disclosure Jun 1

Insight bundles exposure management, patch operations, and XDR into one service

Insight has launched Insight Managed Exposure Defense, a managed security service designed to help organizations identify and address vulnerabilities. The se...

Help Net Security →

Help Net Security Vulnerability Disclosure Jun 1

Cato cuts vulnerability protection time to 45 minutes with agentic threat research

Cato Networks announced a new capability that reduces time-to-protect for newly disclosed vulnerabilities to 45 minutes. The company attributes this reductio...

Help Net Security →

HackRead Vulnerability Disclosure Jun 1

Zero-Click pretalx XSS Flaw Lets Hackers Hijack Conference Organizer Accounts

pretalx XSS flaw lets attackers hijack conference organizer accounts, steal sessions, auto-accept talks, and demote admins. Patched in v2026.

HackRead →

Help Net Security Vulnerability Disclosure Microsoft Jun 1

Microsoft Defender Vulnerability Management gets a smarter exposure score

Microsoft Defender Vulnerability Management’s updated exposure score model adds vulnerability risk signals and asset context to help teams understand where r...

Help Net Security →

BleepingComputer Vulnerability Disclosure Microsoft Jun 1

Critical Windows Netlogon RCE flaw now exploited in attacks

The Centre for Cybersecurity Belgium (CCB), the country's national authority for cybersecurity, warned on Friday that threat actors are now exploiting a rece...

BleepingComputer →

Help Net Security Vulnerability Disclosure Intel Jun 1

Horizon3.ai introduces Rapid Response to prioritize and verify vulnerability remediation

Horizon3.ai has introduced Rapid Response, a capability that helps organizations assess exposure to newly disclosed threats, prioritize remediation, and veri...

Help Net Security →

CSO Online Vulnerability Disclosure Jun 1

Flowise’s MCP implementation can run ghost commands

Enterprises using the lightweight, open-source Flowise platform to power self-hosted AI workloads have a new near-max severity issue to worry about. Research...

T1190

CSO Online →

Help Net Security Vulnerability Disclosure Jun 1

How NIST fumbled management of the National Vulnerability Database

A US federal watchdog has outlined how the National Institute of Standards and Technology (NIST) failed to effectively manage the growing backlog of unproces...

Help Net Security →

SecurityWeek Vulnerability Disclosure Linux Jun 1

19-Year-Old Linux Kernel Vulnerability Exposes Systems to Root Access

proof-of-concept (PoC) exploit code has been released for the CIFSwitch flaw, which allows low-privileged users to escalate to root on vulnerable Linux syste...

SecurityWeek →

Security Affairs Vulnerability Disclosure Linux Jun 1

CIFSwitch, a Linux Root Bug Hidden in Plain Sight for 19 Years

CIFSwitch is a 19-year-old Linux logic bug turning forged CIFS auth keys into root. Affects Mint, CentOS, Rocky, Kali, SLES.

T1548 T1598

Security Affairs →

The Hacker News Vulnerability Disclosure Google WordPress Jun 1

Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts

Threat actors are attempting to actively exploit a critical security flaw impacting WP Maps Pro, a WordPress plugin that has had over 15,000 sales on the Env...

The Hacker News →

«Previous page 1 ... 4 5 6 7 8 ... 30 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA